The incident at Uber Freight, the logistics arm of the ride-sharing giant, comes after the Helix group listed the company on its data leak site on August 6, claiming to have accessed mailboxes, OneDrive accounts, and accounts receivable.
The misconfiguration on Klaviyo's sign-up page allowed any third-party trackers present on the site to potentially access and share sensitive customer data.
A vulnerability in HP ThinPro 8 and 9 operating systems allows attackers with physical access to bypass TPM-backed full-disk encryption and recover the key securing the device's root partition.
A vendor, identified as "Gordon Freeman," advertised a 7.5 GB database allegedly containing national ID numbers, addresses, phone numbers, birth and death dates, and family links for nearly all Israeli citizens.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.